Getting Data In

Install Windows Updates with Splunk UF

jg91
Path Finder

Hello dear Splunkers,
We have many windows machines in our company and we installed Splunk UF on these systems.
Can we install windows updates or other applications remotely with our Splunk UFs ?
Thanks.

Tags (2)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

In theory, you can push an app containing a shell script to your UFs and the forwarders will run the script at the designated time. The script can perform just about any action that the user running the UF could do. This is one reason why UFs should not run as a privileged user.

---
If this reply helps you, Karma would be appreciated.
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...